A code injection in Nextcloud Desktop Client 2.6.4 allowed to load arbitrary code when placing a malicious OpenSSL config into a fixed directory.Referenceshttps://hackerone.com/reports/622170https://nextcloud.com/security/advisory/?id=NC-SA-2020-030https://security.gentoo.org/glsa/202009-09